GitLab Patches Critical 9.9 AI Gateway Flaw Allowing Command Execution on Self-Hosted Servers
GitLab patched a critical 9.9-rated flaw in its AI Gateway that could let a logged-in user with Duo Agent Platform access run commands on self-hosted gateway servers. The flaw is fixed in gateway versions 19.2.4, 19.3.2, and 19.4.1; only organizations hosting their own gateway need to act.